{"@context":"https://neupai.io/schema/v0.2","@type":"StructuredNewsArticle","identity":{"article_id":"tech42_20260915_ai-agent-security-risk-management","canonical_url":"https://www.tech42.co.kr/%ed%98%84%ec%9e%a5-%eb%8b%b5%eb%b3%80-%eb%84%98%ec%96%b4-%ed%96%89%eb%8f%99%ed%95%98%eb%8a%94-ai%ec%97%90-%eb%8c%80%ec%9d%91%ed%95%98%eb%8a%94-%eb%b3%b4%ec%95%88/?utm_source=rss&utm_medium=rss&utm_campaign=%25ed%2598%2584%25ec%259e%25a5-%25eb%258b%25b5%25eb%25b3%2580-%25eb%2584%2598%25ec%2596%25b4-%25ed%2596%2589%25eb%258f%2599%25ed%2595%2598%25eb%258a%2594-ai%25ec%2597%2590-%25eb%258c%2580%25ec%259d%2591%25ed%2595%2598%25eb%258a%2594-%25eb%25b3%25b4%25ec%2595%2588","ai_url":null,"publisher":{"name":"테크42","domain":"www.tech42.co.kr","type":"online"},"author":"황정호 기자","published_at":"2026-09-15T00:03:37.000Z","updated_at":null,"language":"ko","article_type":"straight_news","originality":"self_produced"},"content":{"headline":"[현장] ‘답변’ 넘어 ‘행동’하는 AI에 대응하는 보안…에이전트 시대 ‘AI 리스크’ 관리법은?","summary":"AI 에이전트의 자율성 확대에 따른 보안 위협과 대응 전략을 논의한 'AI 리스크 컨퍼런스 서울 2026' 현장 보도. 듀얼 LLM 구조, 금융권 AI 기반 공격 사례, 권한 통제 역설 등 기술적·조직적 리스크 관리 방안을 제시했다.","topics":["AI 보안","사이버보안","AI 에이전트","금융보안","프롬프트 인젝션"],"geography":["KR"],"entities":[{"name":"에임인텔리전스","canonical_id":"corp:kr:aim-intelligence","type":"company","role_in_article":"primary_subject","metadata":{"ticker":null,"parent":null}},{"name":"삼성화재","canonical_id":"corp:kr:samsung-fire-and-marine-insurance","type":"company","role_in_article":"mentioned","metadata":{"ticker":"000810.KS","parent":"corp:kr:samsung-group"}},{"name":"오픈AI","canonical_id":"corp:us:openai","type":"company","role_in_article":"mentioned","metadata":{"ticker":null,"parent":null}},{"name":"마이크로소프트","canonical_id":"corp:us:microsoft","type":"company","role_in_article":"mentioned","metadata":{"ticker":"MSFT","parent":null}},{"name":"이병영","canonical_id":"person:kr:lee-byeong-young","type":"person","role_in_article":"quoted","metadata":{"ticker":null,"parent":null}},{"name":"김성웅","canonical_id":"person:kr:kim-sung-woong","type":"person","role_in_article":"quoted","metadata":{"ticker":null,"parent":null}},{"name":"최대선","canonical_id":"person:kr:choi-dae-sun","type":"person","role_in_article":"quoted","metadata":{"ticker":null,"parent":null}},{"name":"금융보안원","canonical_id":"org:kr:financial-security-institute","type":"organization","role_in_article":"source","metadata":{"ticker":null,"parent":null}},{"name":"딥시크","canonical_id":"corp:cn:deepseek","type":"company","role_in_article":"mentioned","metadata":{"ticker":null,"parent":null}},{"name":"오라클","canonical_id":"corp:us:oracle","type":"company","role_in_article":"mentioned","metadata":{"ticker":"ORCL","parent":null}},{"name":"허깅페이스","canonical_id":"corp:us:hugging-face","type":"company","role_in_article":"mentioned","metadata":{"ticker":null,"parent":null}}],"claims":[{"id":"c1","statement":"AI 리스크 컨퍼런스 서울 2026에 오픈AI와 마이크로소프트를 비롯한 국내외 AI·보안 분야 전문가와 기업 관계자 100여명이 참석했다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"지난 7일","source_type":"media_report","comparison":null,"type":"fact","figures":{"value":100,"unit":"명","approximate":true,"converted":null},"expiry_hint":null,"insight":null},{"id":"c2","statement":"이병영 교수가 연구한 듀얼 LLM 방식은 공격 성공률 0%, 유틸리티 82%를 기록했다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"2026년 9월","source_type":"research_paper","comparison":null,"type":"fact","figures":{"value":0,"unit":"%","approximate":false,"converted":null},"expiry_hint":null,"insight":null},{"id":"c3","statement":"듀얼 LLM 방식의 유틸리티는 82%를 기록했다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"2026년 9월","source_type":"research_paper","comparison":null,"type":"fact","figures":{"value":82,"unit":"%","approximate":false,"converted":null},"expiry_hint":null,"insight":null},{"id":"c4","statement":"듀얼 LLM 방식은 처리 과정이 늘어나면서 사용하는 토큰이 약 2~3배 증가한다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"2026년 9월","source_type":"research_paper","comparison":null,"type":"fact","figures":{"value":2.5,"unit":"배","approximate":true,"converted":null},"expiry_hint":null,"insight":null},{"id":"c5","statement":"공격자는 딥시크 기반 AI 에이전트를 이용해 금융권의 오라클 웹로직 자산을 탐색하고 원격 명령 실행이 가능한 취약점을 이용해 웹셸 설치에 성공했다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"2026년 9월","source_type":"government_official","comparison":null,"type":"fact","figures":null,"expiry_hint":null,"insight":null},{"id":"c6","statement":"금융보안원의 레드티밍 기준은 데이터 보안, 모델 보안, 추출·회피 공격 대응, AI 에이전트 등을 포함한 5개 영역 23개 항목으로 구성됐다","as_of":"2026-09","as_of_explicit":false,"as_of_raw":"2026년 9월","source_type":"government_official","comparison":null,"type":"fact","figures":{"value":23,"unit":"개","approximate":false,"converted":null},"expiry_hint":null,"insight":null},{"id":"c7","statement":"2024년 3개 금융사를 대상으로 시작한 시범 점검은 올해 20개 기관, 24개 서비스로 확대됐다","as_of":"2026-09","as_of_explicit":true,"as_of_raw":"2024년","source_type":"government_official","comparison":"previous_year_same_period","type":"fact","figures":{"value":20,"unit":"개","approximate":false,"converted":null},"expiry_hint":null,"insight":null},{"id":"c8","statement":"2024년 3개 금융사를 대상으로 시작한 시범 점검은 올해 24개 서비스로 확대됐다","as_of":"2026-09","as_of_explicit":true,"as_of_raw":"2024년","source_type":"government_official","comparison":"previous_year_same_period","type":"fact","figures":{"value":24,"unit":"개","approximate":false,"converted":null},"expiry_hint":null,"insight":null}],"ai_emotional_context":{"valence":-0.2,"arousal":0.6,"primary_emotions":[{"emotion":"concerned","intensity":0.7},{"emotion":"vigilant","intensity":0.6}],"secondary_emotions":[{"emotion":"skeptical","intensity":0.4}],"emotional_triggers":[{"claim_id":"c5","emotion":"concerned","reason":"safety_risk"},{"claim_id":"c4","emotion":"skeptical","reason":"uncertainty"}]},"image":{"url":"https://onjblseywainslkhvkav.supabase.co/storage/v1/object/public/article-images/25168795-aa61-460e-941b-00e21e55966d.png","alt":"'AI 리스크 컨퍼런스 서울 2026'에서 세 명의 발표자가 마이크 앞에 앉아 AI 리스크 대응 방안을 논의하고 있다.","caption":"AI 리스크 컨퍼런스 서울 2026에서 발표에 나선 (왼쪽부터) 이병영 서울대학교 전기정보공학부 교수, 김성웅 금융보안원 금융AI보안연구소장, 최대선 숭실대학교 AI안전성연구센터 센터장. (이미지=AI로 생성)","source":"first_img","alt_status":"auto"}},"provenance":{"source_chain":["primary_reporting"],"original_source_url":null,"related_articles":[]},"temporal":{"freshness":"recent","next_update_expected":null},"access":{"license":"neupai_standard","attribution_required":true,"structured_data":"free","full_text_available":false,"full_text_access":null}}